Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Qualcomm

46,786 known vulnerabilities

529
CRITICAL
1,510
HIGH
426
MEDIUM

Top Products

ar8035 643 ar8035 firmware 621 aqt1000 616 mdm9206 611 mdm9206 firmware 603 aqt1000 firmware 586 mdm9607 564 mdm9607 firmware 562 mdm9650 483 mdm9650 firmware 473
2,465 CVEs · Page 8/50
8.2
CVE-2024-49839

Memory corruption during management frame processing due to mismatch in T2LM info element.

8.2
CVE-2024-49838

Information disclosure while parsing the OCI IE with invalid length.

7.8
CVE-2024-49837

Memory corruption while reading CPU state data during guest VM suspend.

7.8
CVE-2024-49834

Memory corruption while power-up or power-down sequence of the camera sensor.

7.8
CVE-2024-49833

Memory corruption can occur in the camera when an invalid CID is used.

7.8
CVE-2024-49832

Memory corruption in Camera due to unusually high number of nodes passed to AXI port.

7.8
CVE-2024-45584

Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.

7.8
CVE-2024-45582

Memory corruption while validating number of devices in Camera kernel .

7.8
CVE-2024-45573

Memory corruption may occour while generating test pattern due to negative indexing of display ID.

7.8
CVE-2024-45571

Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.

9.8
CVE-2024-45569

Memory corruption while parsing the ML IE due to invalid frame content.

7.8
CVE-2024-45561

Memory corruption while handling IOCTL call from user-space to set latency level.

7.8
CVE-2024-45560

Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.

8.8
CVE-2024-38420

Memory corruption while configuring a Hypervisor based input virtual device.

7.8
CVE-2024-38418

Memory corruption while parsing the memory map info in IOCTL calls.

6.1
CVE-2024-38417

Information disclosure while processing IO control commands.

6.1
CVE-2024-38416

Information disclosure during audio playback.

6.1
CVE-2024-38414

Information disclosure while processing information on firmware image during core initialization.

6.6
CVE-2024-38413

Memory corruption while processing frame packets.

6.6
CVE-2024-38412

Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.

6.6
CVE-2024-38411

Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.

7.5
CVE-2024-38404

Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.

5.5
CVE-2024-45559

Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.

7.5
CVE-2024-45558

Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without ch

8.4
CVE-2024-45555

Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows u

7.8
CVE-2024-45553

Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global

7.8
CVE-2024-45550

Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.

7.8
CVE-2024-45548

Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.

7.8
CVE-2024-45547

Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryp

7.8
CVE-2024-45546

Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.

7.8
CVE-2024-45542

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

7.8
CVE-2024-45541

Memory corruption when IOCTL call is invoked from user-space to read board data.

7.5
CVE-2024-43064

Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers th

6.1
CVE-2024-43063

information disclosure while invoking the mailbox read API.

6.1
CVE-2024-33067

Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received

6.8
CVE-2024-33061

Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel

6.7
CVE-2024-33059

Memory corruption while processing frame command IOCTL calls.

6.7
CVE-2024-33055

Memory corruption while invoking IOCTL calls to unmap the DMA buffers.

6.7
CVE-2024-33041

Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,

6.6
CVE-2024-23366

Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.

8.4
CVE-2024-21464

Memory corruption while processing IPA statistics, when there are no active clients registered.

7.8
CVE-2024-43053

Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.

7.8
CVE-2024-43052

Memory corruption while processing API calls to NPU with invalid input.

7.8
CVE-2024-43050

Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.

7.8
CVE-2024-43049

Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver.

7.8
CVE-2024-43048

Memory corruption when invalid input is passed to invoke GPU Headroom API call.

7.5
CVE-2024-33063

Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside w

8.4
CVE-2024-33056

Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

6.7
CVE-2024-33053

Memory corruption when multiple threads try to unregister the CVP buffer at the same time.

8.4
CVE-2024-33044

Memory corruption while Configuring the SMR/S2CR register in Bypass mode.

Frequently Asked Questions

How many CVEs affect Qualcomm?

Qualcomm has 46,786 CVE records in our database, including 9787 critical and 28782 high severity vulnerabilities. 12 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Qualcomm vulnerabilities?

Qualcomm has 9787 critical severity (CVSS 9.0+) and 28782 high severity (CVSS 7.0-8.9) vulnerabilities. 12 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Qualcomm vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Qualcomm products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Qualcomm Vulnerabilities

CyberStrike scans your infrastructure for Qualcomm vulnerabilities and provides real-time remediation guidance.

Get Started